Limits
Certain types of network traffic on ccloud³ VMs are restricted to prevent malicious actions such as reflected DDoS attacks. These restrictions also prevent features such as configuring Direct Server Return and using ccloud³ VMs as routers and site-to-site VPN gateways. Future changes to our network will support this functionality. Until then, some workarounds involve the use of a VPN mesh network or an overlay network.
The following types of traffic are restricted:
-
Incoming TCP and UDP traffic on port 11211 from external networks (due to the Memcached amplification attacks in March 2018)
-
Multicast traffic
-
Traffic that does not match the IP address or MAC address of a ccloud³ VM
-
SMTP via reserved IP addresses and IPv6.
All ccloud³ VMs have a network throughput limit of 1 Gbps.
You cannot create more than 10 ccloud³ VMs at the same time via the Control Panel or the API.
SMTP port 25 is blocked on all ccloud³ VMs for new accounts. As an alternative, we recommend using a dedicated email delivery platform. We generally advise against running your own mail server.
Root password resets are not available for operating systems with internally managed passwords, including Fedora.
ccloud³ VMs cannot be assigned more than one reserved IP address at a time.
VM resources
Your VM can have a minimum and maximum of the following resources:
| Resource | Minimum | Maximum |
|---|---|---|
| vCPU | 1 | 24 |
| RAM (GB) | 1 | 64 |
| SSD (GB) | 10 | 1000 |
Nested Virtualisation
Nested virtualisation is not supported on ccloud³ VMs, including all additional features.
Known issues
Due to our network design, traceroute diagnostics between ccloud³ VMs may show 100% packet loss over the last two hops. This packet loss is to be expected and does not affect connectivity between ccloud³ VMs.